Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
Web Application Threat Model (microsoft.com)
10 points by kabuks on Aug 17, 2009 | hide | past | favorite | 4 comments


Threat modeling is a pain in the ass, doubly so if you're using an automated tool.

Simple, platform and software-specific checklists might be better. Here is a generic one as well.

http://www.sans.org/reading_room/whitepapers/securecode/a_se...


Please post a [PDF] warning on pdf links.


You should post that one separately.


I want to vomit when I read the word "stakeholders".




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: